These are chat archives for Yelp/elastalert

18th
Aug 2017
reeenz20
@reeenz20
Aug 18 2017 10:51

Hi,
Im trying to create an alert when my HDD is above 90%. I'm using topbeat v1.3.1 and ELK 5.4

Right now this doesn't worK

filter:

  • range:
    fs.used_p:
    from: 0
    to: 0.9

also replaced from and to into gte and lte respectively.
Any suggestions?

Quentin Long
@Qmando
Aug 18 2017 22:40
@reeenz20 Don't you want from 0.9 to 1.0 ??
Also define "doesn't work"? Errors? False negatives? Fales positives?
What's your type?
In general I would say
```
type: any
filter:
  • range:
type: any
filter:
 - range:
     fs.used_p:
       from: 0.9